
A malicious npm package has been discovered that masquerades as a vulnerability detector for Ethereum smart contracts. Instead of performing its advertised function, the package installs Quasar RAT, a remote access trojan that grants attackers full control over the infected systems. This trojan allows for persistence through modifications to the Windows Registry and establishes Command-and-Control connections. The threat was highlighted by cybersecurity experts, including reports from The Hacker News and Socket Security, emphasizing the risks posed to developers using such compromised tools.
A malicious npm package has been posing as a tool for detecting bugs in Ethereum smart contracts, but instead deploys Quasar RAT onto the machines of developers, according to @SocketSecurity. #cybersecurity #infosec #ITsecurity https://t.co/5tpoc5zzNE
'𝗥𝗮𝗻𝘀𝗼𝗺𝘄𝗮𝗿𝗲' क्यों बना है जनता और सरकार का दुश्मन, जानें साइबर अपराध के इतिहास में यह पहला मामला था जब किसी ने मैलवेयर के जरिए फिरौती की मांग की गई हो। इसके बाद Ransomware ने धीरे-धीरे अपने पैर पसारने शुरू कर दिए। पढ़ें पूरी खबर... #TechnicalNews #Ransomware… https://t.co/7H1Tfsg91y
Malicious Obfuscated NPM Package Disguised as an Ethereum Tool Deploys Quasar RAT https://t.co/TqovQfsYp6
